It has been reported that a number of phpCodeCabinet scripts are prone to cross site scripting vulnerabilities. These issues are reportedly due to a failure to sanitize user input and so allow HTML and script code that may facilitate cross-site scripting attacks. This could permit a remote attacker to create a malicious link to the vulnerable application that includes hostile HTML and script code. If this link were followed, the hostile code may be rendered in the web browser of the victim user potentially allowing for theft of cookie-based authentication credentials or other attacks.
It has been reported that a number of phpCodeCabinet scripts are prone to cross site scripting vulnerabilities. These issues are reportedly due to a failure to sanitize user input and so allow HTML and script code that may facilitate cross-site scripting attacks. This could permit a remote attacker to create a malicious link to the vulnerable application that includes hostile HTML and script code. If this link were followed, the hostile code may be rendered in the web browser of the victim user potentially allowing for theft of cookie-based authentication credentials or other attacks.